BPOI Banner
North Korea Deploying ‘Highly Tailored, Difficult-To-Detect’ Tactics To Steal Crypto From Businesses: FBI North Korea Deploying ‘Highly Tailored, Difficult-To-Detect’ Tactics To Steal Crypto From Businesses: FBI

North Korea Deploying ‘Highly Tailored, Difficult-To-Detect’ Tactics To Steal Crypto From Businesses: FBI

North Korea has been running highly sophisticated social engineering schemes designed to crack the security measures of crypto and decentralized finance (DeFi) firms, according to the U.S. Federal Bureau of Investigation (FBI).

A new FBI public service announcement indicates North Korean cyber criminals target specific employees at firms connected to crypto exchange-traded funds (ETFs).

“Before initiating contact, the actors scout prospective victims by reviewing social media activity, particularly on professional networking or employment-related platforms.

North Korean malicious cyber actors incorporate personal details regarding an intended victim’s background, skills, employment, or business interests to craft customized fictional scenarios designed to be uniquely appealing to the targeted person.”

The FBI says fake scenarios often include new job opportunities or promises of corporate investment. North Korean cyber criminals can speak fluent English, demonstrate crypto technical prowess and will often reference obscure, highly targeted personal information designed to feign legitimacy, according to the law enforcement agency.

“The actors usually attempt to initiate prolonged conversations with prospective victims to build rapport and deliver malware in situations that may appear natural and non-alerting.”

The FBI says red flags include:

  • “Requests to execute code or download applications on company-owned devices or other devices with access to a company’s internal network.
  • Requests to conduct a ‘pre-employment test’ or debugging exercise that involves executing non-standard or unknown Node.js packages, PyPI packages, scripts, or GitHub repositories.
  • Offers of employment from prominent cryptocurrency or technology firms that are unexpected or involve unrealistically high compensation without negotiation.
  • Offers of investment from prominent companies or individuals that are unsolicited or have not been proposed or discussed previously.
  • Insistence on using non-standard or custom software to complete simple tasks easily achievable through the use of common applications (i.e. video conferencing or connecting to a server).
  • Requests to run a script to enable call or video teleconference functionalities supposedly blocked due to a victim’s location.
  • Requests to move professional conversations to other messaging platforms or applications.
  • Unsolicited contacts that contain unexpected links or attachments.”

The FBI recommends that crypto firm employees verify the identities of their contacts through other communication platforms and avoid taking pre-employment tests for potential new jobs on existing work laptops.

The agency also suggests firms keep information about crypto wallets offline; install multiple factors of authentication to move corporate financial assets; limit access to sensitive network documentation; funnel business communications to closed platforms that require in-person authentication; and disable email attachments by default on company devices.

Don’t Miss a Beat – Subscribe to get email alerts delivered directly to your inbox

Check Price Action

Follow us on X, Facebook and Telegram

Surf The Daily Hodl Mix

&nbsp

Disclaimer: Opinions expressed at The Daily Hodl are not investment advice. Investors should do their due diligence before making any high-risk investments in Bitcoin, cryptocurrency or digital assets. Please be advised that your transfers and trades are at your own risk, and any losses you may incur are your responsibility. The Daily Hodl does not recommend the buying or selling of any cryptocurrencies or digital assets, nor is The Daily Hodl an investment advisor. Please note that The Daily Hodl participates in affiliate marketing.

Generated Image: Midjourney



Source link

Conor Devitt

https://dailyhodl.com/2024/09/05/north-korea-deploying-highly-tailored-difficult-to-detect-tactics-to-steal-crypto-from-businesses-fbi/

2024-09-05 16:55:26

bitcoin
Bitcoin (BTC) $ 67,750.15 1.41%
ethereum
Ethereum (ETH) $ 2,620.26 0.91%
tether
Tether (USDT) $ 0.999698 0.08%
bnb
BNB (BNB) $ 602.68 1.67%
solana
Solana (SOL) $ 154.80 0.94%
usd-coin
USDC (USDC) $ 0.999687 0.09%
xrp
XRP (XRP) $ 0.549368 1.57%
staked-ether
Lido Staked Ether (STETH) $ 2,619.65 0.91%
dogecoin
Dogecoin (DOGE) $ 0.126618 9.96%
tron
TRON (TRX) $ 0.159959 0.73%
the-open-network
Toncoin (TON) $ 5.25 0.94%
cardano
Cardano (ADA) $ 0.355495 0.11%
avalanche-2
Avalanche (AVAX) $ 28.12 0.35%
shiba-inu
Shiba Inu (SHIB) $ 0.000019 3.66%
wrapped-steth
Wrapped stETH (WSTETH) $ 3,094.62 0.80%
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 67,601.11 1.27%
weth
WETH (WETH) $ 2,619.60 0.92%
bitcoin-cash
Bitcoin Cash (BCH) $ 365.23 3.61%
chainlink
Chainlink (LINK) $ 11.32 0.21%
polkadot
Polkadot (DOT) $ 4.34 1.00%
near
NEAR Protocol (NEAR) $ 5.00 0.42%
dai
Dai (DAI) $ 0.999591 0.06%
sui
Sui (SUI) $ 2.11 4.17%
uniswap
Uniswap (UNI) $ 7.62 2.63%
leo-token
LEO Token (LEO) $ 6.06 0.61%
litecoin
Litecoin (LTC) $ 70.11 0.16%
aptos
Aptos (APT) $ 10.12 3.36%
pepe
Pepe (PEPE) $ 0.000011 3.12%
wrapped-eeth
Wrapped eETH (WEETH) $ 2,751.00 0.86%
bittensor
Bittensor (TAO) $ 586.08 0.89%
fetch-ai
Artificial Superintelligence Alliance (FET) $ 1.44 0.85%
internet-computer
Internet Computer (ICP) $ 7.96 0.87%
kaspa
Kaspa (KAS) $ 0.131401 1.99%
ethereum-classic
Ethereum Classic (ETC) $ 19.47 0.90%
first-digital-usd
First Digital USD (FDUSD) $ 0.999845 0.11%
monero
Monero (XMR) $ 156.33 1.73%
stellar
Stellar (XLM) $ 0.095174 2.53%
polygon-ecosystem-token
POL (ex-MATIC) (POL) $ 0.372019 0.90%
blockstack
Stacks (STX) $ 1.85 3.06%
dogwifcoin
dogwifhat (WIF) $ 2.65 2.80%
immutable-x
Immutable (IMX) $ 1.53 1.17%
okb
OKB (OKB) $ 41.15 0.43%
ethena-usde
Ethena USDe (USDE) $ 0.998925 0.01%
whitebit
WhiteBIT Coin (WBT) $ 16.37 0.19%
aave
Aave (AAVE) $ 157.33 0.36%
filecoin
Filecoin (FIL) $ 3.78 0.36%
optimism
Optimism (OP) $ 1.78 3.68%
render-token
Render (RENDER) $ 5.43 0.24%
crypto-com-chain
Cronos (CRO) $ 0.079023 2.02%
mantle
Mantle (MNT) $ 0.624936 1.00%